Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2016-1458 The web-based GUI in Cisco Firepower Management Center 4.x and 5.x before 5.3.0.3, 5.3.1.x before 5.3.1.2, and 5.4.x before 5.4.0.1 and Cisco Adaptiv… Secure Firewall Management Center Mitigation only Fix from $1,9502016-08-18 HIGH 8.8 CVE-2016-1457 The web-based GUI in Cisco Firepower Management Center 4.x and 5.x before 5.3.1.2 and 5.4.x before 5.4.0.1 and Cisco Adaptive Security Appliance (ASA… Secure Firewall Management Center Mitigation only Fix from $1,9502016-08-18 HIGH 8.8 CVE-2016-1365 The Grapevine update process in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0 allows remote authenticated users … Application Policy Infrastructure Controller Enterprise Module Mitigation only Fix from $1,9502016-08-18 HIGH 7.8 CVE-2016-6367 KEVEPSS 23% Cisco Adaptive Security Appliance (ASA) Software before 8.4(1) on ASA 5500, ASA 5500-X, PIX, and FWSM devices allows local users to gain privileges v… Adaptive Security Appliance Software 8.4 / 9.0+ Fix from $1,9502016-08-18 HIGH 8.8 CVE-2016-6366 KEVEPSS 88% Buffer overflow in Cisco Adaptive Security Appliance (ASA) Software through 9.4.2.3 on ASA 5500, ASA 5500-X, ASA Services Module, ASA 1000V, ASAv, Fi… Pix Firewall Software 9.0.4.40 / 9.1.7+ Fix from $1,9502016-08-18 HIGH 7.5 CVE-2016-1478 Cisco IOS 15.5(3)S3, 15.6(1)S2, 15.6(2)S1, and 15.6(2)T1 does not properly dequeue invalid NTP packets, which allows remote attackers to cause a deni… iOS Mitigation only Fix from $1,9502016-08-08 HIGH 8.8 CVE-2016-1468 The administrative web interface in Cisco TelePresence Video Communication Server Expressway X8.5.2 allows remote authenticated users to execute arbi… Telepresence Video Communication Server Mitigation only Fix from $1,9502016-08-08 HIGH 7.5 CVE-2016-1466 Cisco Unified Communications Manager IM and Presence Service 9.1(1) SU6, 9.1(1) SU6a, 9.1(1) SU7, 10.5(2) SU2, 10.5(2) SU2a, 11.0(1) SU1, and 11.5(1)… Unified Communications Manager Im And Presence Service Mitigation only Fix from $1,9502016-08-08 HIGH 8.8 CVE-2016-1430 Cisco RV180 and RV180W devices allow remote authenticated users to execute arbitrary commands as root via a crafted HTTP request, aka Bug ID CSCuz485… Rv180 Vpn Router Firmware Mitigation only Fix from $1,9502016-08-08 HIGH 7.5 CVE-2016-1429EPSS 7% Directory traversal vulnerability in the web interface on Cisco RV180 and RV180W devices allows remote attackers to read arbitrary files via a crafte… Rv180 Vpn Router Firmware Mitigation only Fix from $1,9502016-08-08 HIGH 8.8 CVE-2015-6397 Cisco RV110W, RV130W, and RV215W devices have an incorrect RBAC configuration for the default account, which allows remote authenticated users to obt… Rv110w Wireless N Vpn Firewall Firmware Mitigation only Fix from $1,9502016-08-08 HIGH 7.8 CVE-2015-6396 The CLI command parser on Cisco RV110W, RV130W, and RV215W devices allows local users to execute arbitrary shell commands as an administrator via cra… Rv110w Wireless N Vpn Firewall Firmware No fix yet Fix from $1,9502016-08-08 HIGH 7.5 CVE-2016-1461 Cisco AsyncOS on Email Security Appliance (ESA) devices through 9.7.0-125 allows remote attackers to bypass malware detection via a crafted attachmen… Asyncos after 9.7.0-125 Fix from $1,9502016-08-01 MEDIUM 6.5 CVE-2016-1467 Cisco Videoscape Session Resource Manager (VSRM) allows remote attackers to cause a denial of service (device restart) by sending a traffic flood to … Videoscape Session Resource Manager Mitigation only Fix from $1,6002016-07-28 MEDIUM 6.5 CVE-2016-1465 Cisco Nexus 1000v Application Virtual Switch (AVS) devices before 5.2(1)SV3(1.5i) allow remote attackers to cause a denial of service (ESXi hyperviso… Nx Os Mitigation only Fix from $1,6002016-07-28 HIGH 7.5 CVE-2016-1463 Cisco FireSIGHT System Software 5.3.0, 5.3.1, 5.4.0, 6.0, and 6.0.1 allows remote attackers to bypass Snort rules via crafted parameters in the heade… Firesight System Software Mitigation only Fix from $1,9502016-07-28 MEDIUM 6.1 CVE-2016-1462 Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Prime Service Catalog (PSC) 11.0 allows remote attackers to i… Prime Service Catalog Mitigation only Fix from $1,6002016-07-28 MEDIUM 6.5 CVE-2016-1460 Cisco Wireless LAN Controller (WLC) devices 7.4(121.0) and 8.0(0.30220.385) allow remote attackers to cause a denial of service via crafted wireless … Wireless Lan Controller Software Mitigation only Fix from $1,6002016-07-28 HIGH 8.8 CVE-2016-1374 The web framework in Cisco Unified Computing System (UCS) Performance Manager 2.0.0 and earlier allows remote authenticated users to execute arbitrar… Unified Computing System Performance Manager Mitigation only Fix from $1,9502016-07-28 MEDIUM 5.3 CVE-2016-1459 Cisco IOS 12.4 and 15.0 through 15.5 and IOS XE 3.13 through 3.17 allow remote authenticated users to cause a denial of service (device reload) via c… iOS Mitigation only Fix from $1,6002016-07-17 HIGH 8.8 CVE-2016-1448 Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 2.7 allows remote attackers to hijack the authentication of arbitrary … Webex Meetings Server Mitigation only Fix from $1,9502016-07-17 HIGH 7.8 CVE-2016-1456 The CLI in Cisco IOS XR 6.x through 6.0.1 allows local users to execute arbitrary OS commands in a privileged context by leveraging unspecified conta… Ios Xr Mitigation only Fix from $1,9502016-07-15 MEDIUM 6.5 CVE-2016-1452 Cisco ASR 5000 devices with software 18.3 through 20.0.0 allow remote attackers to make configuration changes over SNMP by leveraging knowledge of th… Asr 5000 Mitigation only Fix from $1,6002016-07-15 MEDIUM 6.1 CVE-2016-1451 Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Meeting Server (formerly Acano Conferencing Server) 1.7 throu… Meeting Server Mitigation only Fix from $1,6002016-07-15 HIGH 7.5 CVE-2016-1450 Cisco WebEx Meetings Server 2.6 allows remote authenticated users to conduct command-injection attacks via vectors related to an upload's file type, … Webex Meetings Server Mitigation only Fix from $1,9502016-07-15 MEDIUM 6.1 CVE-2016-1449 Cross-site scripting (XSS) vulnerability in Cisco WebEx Meetings Server 2.6 allows remote attackers to inject arbitrary web script or HTML via a craf… Webex Meetings Server Mitigation only Fix from $1,6002016-07-15 MEDIUM 6.1 CVE-2016-1447 Cross-site scripting (XSS) vulnerability in the administrator interface in Cisco WebEx Meetings Server 2.6 allows remote attackers to inject arbitrar… Webex Meetings Server Mitigation only Fix from $1,6002016-07-15 HIGH 8.8 CVE-2016-1446 SQL injection vulnerability in Cisco WebEx Meetings Server 2.6 allows remote authenticated users to execute arbitrary SQL commands via unspecified ve… Webex Meetings Server Mitigation only Fix from $1,9502016-07-15 HIGH 7.5 CVE-2016-1426 Cisco IOS XR 5.x through 5.2.5 on NCS 6000 devices allows remote attackers to cause a denial of service (timer consumption and Route Processor reload… Ios Xr Mitigation only Fix from $1,9502016-07-15 MEDIUM 5.3 CVE-2016-1445 Cisco Adaptive Security Appliance (ASA) Software 8.2 through 9.4.3.3 allows remote attackers to bypass intended ICMP Echo Reply ACLs via vectors rela… Adaptive Security Appliance Software 9.4.3.3 / 9.5.2.10+ Fix from $1,6002016-07-12